Disclosed Chromium Security Bugs

wolfssl:fuzzer-wolfssh-client-randomize: Use-of-uninitialized-value in fuzzer_send

#42525787Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
6/29/2023

Security: Document PiP window can be resized and moved by compromised renderer, user can interact with sensitive UI using keyboard without being aware

#40063071Reporter: al...@alesandroortiz.com
$1,000
6/28/2023

DCHECK failure in type.IsWord32() in assert-types-reducer.h

#40063281Reporter: cl...@chromium.org
$0
6/28/2023

Security: heap-use-after-free in blink::WebString::WebString

#40063314Reporter: st...@gmail.com
$3,000
6/28/2023

ffmpeg:ffmpeg_AV_CODEC_ID_HEVC_fuzzer: Memcpy-param-overlap in put_hevc_pel_uni_pixels_10

#42525734Reporter: mo...@clusterfuzz-external.iam.gserviceaccount.com
$0
6/28/2023

Global-buffer-overflow in gl::GLDisplayManager::RemoveGpuPreference

#40062840Reporter: cl...@chromium.org
$0
6/27/2023

Security: String with different encoding mismatch, leading Out-of-bounds access.

#40063194Reporter: sh...@alibaba-inc.com
$5,000
6/27/2023

Security: Heap-use-after-free in LocalTabGroupListener::AddWebContents

#40063633Reporter: me...@gmail.com
$5,000
6/27/2023

Heap-use-after-free in blink::NGGridLayoutAlgorithm::BuildGridSizingSubtree

#40063654Reporter: cl...@chromium.org
$0
6/27/2023

Heap-use-after-free in blink::NGSubgriddedItemData::CreateSubgridCollection

#40063661Reporter: cl...@chromium.org
$0
6/27/2023
Showing 4551-4560 of 10808 bugs